cbcvebase.

Debian Dwarfutils vulnerabilities

45 known vulnerabilities affecting debian/dwarfutils.

Total CVEs
45
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH13MEDIUM21LOW5

Vulnerabilities

Page 2 of 3
CVE-2016-5036HIGHCVSS 7.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5036 [HIGH] CVE-2016-5036: dwarfutils - The dump_block function in print_sections.c in libdwarf before 20160923 allows r... The dump_block function in print_sections.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via crafted frame data. Scope: local bookworm: resolved (fixed in 20160507+git20160523.9086738-1) bullseye: resolved (fixed in 20160507+git20160523.9086738-1) forky: resolved (fixed in 20160507+git20160523.9086738-1) sid:
debian
CVE-2016-9275HIGHCVSS 7.5fixed in dwarfutils 20161124-1 (bookworm)2016
CVE-2016-9275 [HIGH] CVE-2016-9275: dwarfutils - Heap-based buffer overflow in the _dwarf_skim_forms function in libdwarf/dwarf_m... Heap-based buffer overflow in the _dwarf_skim_forms function in libdwarf/dwarf_macro5.c in Libdwarf before 20161124 allows remote attackers to cause a denial of service (out-of-bounds read). Scope: local bookworm: resolved (fixed in 20161124-1) bullseye: resolved (fixed in 20161124-1) forky: resolved (fixed in 20161124-1) sid: resolved (fixed in 20161124-1) trixie:
debian
CVE-2016-5042HIGHCVSS 7.5fixed in dwarfutils 20160507-1 (bookworm)2016
CVE-2016-5042 [HIGH] CVE-2016-5042: dwarfutils - The dwarf_get_aranges_list function in libdwarf before 20160923 allows remote at... The dwarf_get_aranges_list function in libdwarf before 20160923 allows remote attackers to cause a denial of service (infinite loop and crash) via a crafted DWARF section. Scope: local bookworm: resolved (fixed in 20160507-1) bullseye: resolved (fixed in 20160507-1) forky: resolved (fixed in 20160507-1) sid: resolved (fixed in 20160507-1) trixie: resolved (fixed in
debian
CVE-2016-5039HIGHCVSS 7.5fixed in dwarfutils 20160507-1 (bookworm)2016
CVE-2016-5039 [HIGH] CVE-2016-5039: dwarfutils - The get_attr_value function in libdwarf before 20160923 allows remote attackers ... The get_attr_value function in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted object with all-bits on. Scope: local bookworm: resolved (fixed in 20160507-1) bullseye: resolved (fixed in 20160507-1) forky: resolved (fixed in 20160507-1) sid: resolved (fixed in 20160507-1) trixie: resolved (fixed in 20
debian
CVE-2016-5037MEDIUMCVSS 6.5fixed in dwarfutils 20160507-1 (bookworm)2016
CVE-2016-5037 [MEDIUM] CVE-2016-5037: dwarfutils - The _dwarf_load_section function in libdwarf before 20160923 allows remote attac... The _dwarf_load_section function in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file. Scope: local bookworm: resolved (fixed in 20160507-1) bullseye: resolved (fixed in 20160507-1) forky: resolved (fixed in 20160507-1) sid: resolved (fixed in 20160507-1) trixie: resolved (fixed in 20160507
debian
CVE-2016-7410MEDIUMCVSS 5.5fixed in dwarfutils 20160923-1 (bookworm)2016
CVE-2016-7410 [MEDIUM] CVE-2016-7410: dwarfutils - The _dwarf_read_loc_section function in dwarf_loc.c in libdwarf 20160613 allows ... The _dwarf_read_loc_section function in dwarf_loc.c in libdwarf 20160613 allows attackers to cause a denial of service (buffer over-read) via a crafted file. Scope: local bookworm: resolved (fixed in 20160923-1) bullseye: resolved (fixed in 20160923-1) forky: resolved (fixed in 20160923-1) sid: resolved (fixed in 20160923-1) trixie: resolved (fixed in 20160923-1)
debian
CVE-2016-5033MEDIUMCVSS 6.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5033 [MEDIUM] CVE-2016-5033: dwarfutils - The print_exprloc_content function in libdwarf before 20160923 allows remote att... The print_exprloc_content function in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file. Scope: local bookworm: resolved (fixed in 20160507+git20160523.9086738-1) bullseye: resolved (fixed in 20160507+git20160523.9086738-1) forky: resolved (fixed in 20160507+git20160523.9086738-1) sid: resolved (
debian
CVE-2016-5029MEDIUMCVSS 6.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5029 [MEDIUM] CVE-2016-5029: dwarfutils - The create_fullest_file_path function in libdwarf before 20160923 allows remote ... The create_fullest_file_path function in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted dwarf file. Scope: local bookworm: resolved (fixed in 20160507+git20160523.9086738-1) bullseye: resolved (fixed in 20160507+git20160523.9086738-1) forky: resolved (fixed in 20160507+git20160523.9086738-1)
debian
CVE-2016-7511MEDIUMCVSS 5.5fixed in dwarfutils 20160923-1 (bookworm)2016
CVE-2016-7511 [MEDIUM] CVE-2016-7511: dwarfutils - Integer overflow in the dwarf_die_deliv.c in libdwarf 20160613 allows remote att... Integer overflow in the dwarf_die_deliv.c in libdwarf 20160613 allows remote attackers to cause a denial of service (crash) via a crafted file. Scope: local bookworm: resolved (fixed in 20160923-1) bullseye: resolved (fixed in 20160923-1) forky: resolved (fixed in 20160923-1) sid: resolved (fixed in 20160923-1) trixie: resolved (fixed in 20160923-1)
debian
CVE-2016-5030MEDIUMCVSS 6.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5030 [MEDIUM] CVE-2016-5030: dwarfutils - The _dwarf_calculate_info_section_end_ptr function in libdwarf before 20160923 a... The _dwarf_calculate_info_section_end_ptr function in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file. Scope: local bookworm: resolved (fixed in 20160507+git20160523.9086738-1) bullseye: resolved (fixed in 20160507+git20160523.9086738-1) forky: resolved (fixed in 20160507+git20160523.9086
debian
CVE-2016-5035MEDIUMCVSS 6.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5035 [MEDIUM] CVE-2016-5035: dwarfutils - The _dwarf_read_line_table_header function in dwarf_line_table_reader.c in libdw... The _dwarf_read_line_table_header function in dwarf_line_table_reader.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file. Scope: local bookworm: resolved (fixed in 20160507+git20160523.9086738-1) bullseye: resolved (fixed in 20160507+git20160523.9086738-1) forky: resolved (fixed in 20160507+g
debian
CVE-2016-5028MEDIUMCVSS 6.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5028 [MEDIUM] CVE-2016-5028: dwarfutils - The print_frame_inst_bytes function in libdwarf before 20160923 allows remote at... The print_frame_inst_bytes function in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via an object file with empty bss-like sections. Scope: local bookworm: resolved (fixed in 20160507+git20160523.9086738-1) bullseye: resolved (fixed in 20160507+git20160523.9086738-1) forky: resolved (fixed in 20160507+gi
debian
CVE-2016-5034MEDIUMCVSS 6.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5034 [MEDIUM] CVE-2016-5034: dwarfutils - dwarf_elf_access.c in libdwarf before 20160923 allows remote attackers to cause ... dwarf_elf_access.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted file, related to relocation records. Scope: local bookworm: resolved (fixed in 20160507+git20160523.9086738-1) bullseye: resolved (fixed in 20160507+git20160523.9086738-1) forky: resolved (fixed in 20160507+git20160523.9086738-1)
debian
CVE-2016-8679MEDIUMCVSS 6.5fixed in dwarfutils 20161001-2 (bookworm)2016
CVE-2016-8679 [MEDIUM] CVE-2016-8679: dwarfutils - The _dwarf_get_size_of_val function in libdwarf/dwarf_util.c in Libdwarf before ... The _dwarf_get_size_of_val function in libdwarf/dwarf_util.c in Libdwarf before 20161124 allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file. Scope: local bookworm: resolved (fixed in 20161001-2) bullseye: resolved (fixed in 20161001-2) forky: resolved (fixed in 20161001-2) sid: resolved (fi
debian
CVE-2016-8681MEDIUMCVSS 5.5fixed in dwarfutils 20161001-2 (bookworm)2016
CVE-2016-8681 [MEDIUM] CVE-2016-8681: dwarfutils - The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and... The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file. Scope: local bookworm: resolved (fixed in 20161001-2) bullseye: resolved (fixed in 20161001-2) forky: resolved (fixed in 20161001-2) sid: resolved (fi
debian
CVE-2016-5031MEDIUMCVSS 5.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5031 [MEDIUM] CVE-2016-5031: dwarfutils - The print_frame_inst_bytes function in libdwarf before 20160923 allows remote at... The print_frame_inst_bytes function in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file. Scope: local bookworm: resolved (fixed in 20160507+git20160523.9086738-1) bullseye: resolved (fixed in 20160507+git20160523.9086738-1) forky: resolved (fixed in 20160507+git20160523.9086738-1) sid: resolved
debian
CVE-2016-5032MEDIUMCVSS 6.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5032 [MEDIUM] CVE-2016-5032: dwarfutils - The dwarf_get_xu_hash_entry function in libdwarf before 20160923 allows remote a... The dwarf_get_xu_hash_entry function in libdwarf before 20160923 allows remote attackers to cause a denial of service (crash) via a crafted file. Scope: local bookworm: resolved (fixed in 20160507+git20160523.9086738-1) bullseye: resolved (fixed in 20160507+git20160523.9086738-1) forky: resolved (fixed in 20160507+git20160523.9086738-1) sid: resolved (fixed in 20
debian
CVE-2016-7510MEDIUMCVSS 6.5fixed in dwarfutils 20160923-1 (bookworm)2016
CVE-2016-7510 [MEDIUM] CVE-2016-7510: dwarfutils - The read_line_table_program function in dwarf_line_table_reader_common.c in libd... The read_line_table_program function in dwarf_line_table_reader_common.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via crafted input. Scope: local bookworm: resolved (fixed in 20160923-1) bullseye: resolved (fixed in 20160923-1) forky: resolved (fixed in 20160923-1) sid: resolved (fixed in 20160923-1) tr
debian
CVE-2016-5027MEDIUMCVSS 5.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5027 [MEDIUM] CVE-2016-5027: dwarfutils - dwarf_form.c in libdwarf 20160115 allows remote attackers to cause a denial of s... dwarf_form.c in libdwarf 20160115 allows remote attackers to cause a denial of service (crash) via a crafted elf file. Scope: local bookworm: resolved (fixed in 20160507+git20160523.9086738-1) bullseye: resolved (fixed in 20160507+git20160523.9086738-1) forky: resolved (fixed in 20160507+git20160523.9086738-1) sid: resolved (fixed in 20160507+git20160523.9086738-
debian
CVE-2016-8680MEDIUMCVSS 6.5fixed in dwarfutils 20161001-2 (bookworm)2016
CVE-2016-8680 [MEDIUM] CVE-2016-8680: dwarfutils - The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and... The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file. Scope: local bookworm: resolved (fixed in 20161001-2) bullseye: resolved (fixed in 20161001-2) forky: resolved (fixed in 20161001-2) sid: resolved (fi
debian